Sparkle for Divi Security & Risk Analysis

wordpress.org/plugins/sparkle-for-divi

Add beautiful sparkle and particle animations to any Divi 5 module — no coding required.

0 active installs v0.6.2 PHP 7.4+ WP 6.0+ Updated Apr 3, 2026
animationdivieffectsparticlesvisual-effects
100
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Sparkle for Divi Safe to Use in 2026?

Generally Safe

Score 100/100

Sparkle for Divi has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1mo ago
Risk Assessment

The "sparkle-for-divi" plugin version 0.6.2 exhibits a strong security posture based on the provided static analysis. All identified AJAX handlers have authentication checks, and there are no unescaped outputs or dangerous function calls. The use of prepared statements for all SQL queries is commendable, and the presence of nonce and capability checks on all AJAX handlers further strengthens its defense against common web attacks. The absence of any recorded vulnerabilities, including CVEs, suggests a history of secure development practices.

While the plugin demonstrates excellent security hygiene, the presence of a single file operation entry point, though not explicitly flagged as problematic, could warrant closer inspection in a more in-depth audit. However, with zero unsanitized taint flows and a minimal attack surface, the overall risk associated with this plugin is very low. The current version appears to be robust and well-secured.

Vulnerabilities
None known

Sparkle for Divi Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Sparkle for Divi Release Timeline

v0.6.2Current
Code Analysis
Analyzed Apr 16, 2026

Sparkle for Divi Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
2 prepared
Unescaped Output
3
191 escaped
Nonce Checks
10
Capability Checks
10
File Operations
1
External Requests
0
Bundled Libraries
0

SQL Query Safety

100% prepared2 total queries

Output Escaping

98% escaped194 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

3 flows
save_settings (sparkle-for-divi.php:174)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Sparkle for Divi Attack Surface

Entry Points11
Unprotected0

AJAX Handlers 11

authwp_ajax_sparfodi_save_settingssparkle-for-divi.php:31
authwp_ajax_sparfodi_save_preset_overridesparkle-for-divi.php:32
authwp_ajax_sparfodi_create_user_presetsparkle-for-divi.php:33
authwp_ajax_sparfodi_delete_user_presetsparkle-for-divi.php:34
authwp_ajax_sparfodi_get_usagesparkle-for-divi.php:35
authwp_ajax_sparfodi_track_usagesparkle-for-divi.php:36
noprivwp_ajax_sparfodi_track_usagesparkle-for-divi.php:37
authwp_ajax_sparfodi_clear_usagesparkle-for-divi.php:38
authwp_ajax_sparfodi_rescan_usagesparkle-for-divi.php:39
authwp_ajax_sparfodi_save_uninstall_prefsparkle-for-divi.php:40
authwp_ajax_sparfodi_get_pages_for_livesparkle-for-divi.php:41
WordPress Hooks 4
actionwp_enqueue_scriptssparkle-for-divi.php:28
actionadmin_enqueue_scriptssparkle-for-divi.php:29
actionadmin_menusparkle-for-divi.php:30
actioninitsparkle-for-divi.php:42
Maintenance & Trust

Sparkle for Divi Maintenance & Trust

Maintenance Signals

WordPress version tested6.9.4
Last updatedApr 3, 2026
PHP min version7.4
Downloads78

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Sparkle for Divi Developer Profile

Felix Peeters

1 plugin · 0 total installs

94
trust score
Avg Security Score
100/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Sparkle for Divi

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/sparkle-for-divi/assets/css/sparkle.css/wp-content/plugins/sparkle-for-divi/assets/js/sparkle.js/wp-content/plugins/sparkle-for-divi/assets/css/sfd-live-editor.css/wp-content/plugins/sparkle-for-divi/assets/js/sfd-live-editor.js/wp-content/plugins/sparkle-for-divi/admin/css/admin.css/wp-content/plugins/sparkle-for-divi/admin/js/admin.js
Script Paths
/wp-content/plugins/sparkle-for-divi/assets/js/sparkle.js/wp-content/plugins/sparkle-for-divi/assets/js/sfd-live-editor.js/wp-content/plugins/sparkle-for-divi/admin/js/admin.js
Version Parameters
/wp-content/plugins/sparkle-for-divi/assets/css/sparkle.css?ver=/wp-content/plugins/sparkle-for-divi/assets/js/sparkle.js?ver=/wp-content/plugins/sparkle-for-divi/assets/css/sfd-live-editor.css?ver=/wp-content/plugins/sparkle-for-divi/assets/js/sfd-live-editor.js?ver=/wp-content/plugins/sparkle-for-divi/admin/css/admin.css?ver=/wp-content/plugins/sparkle-for-divi/admin/js/admin.js?ver=

HTML / DOM Fingerprints

CSS Classes
sfd-doc-img-placeholdersfd-doc-numberedsfd-more
Data Attributes
data-sparfodi-options
JS Globals
sparfodiConfigsparfodiLiveEditorsparfodiAdmin
REST Endpoints
/wp-json/sparkle-for-divi/v1/settings/wp-json/sparkle-for-divi/v1/presets/wp-json/sparkle-for-divi/v1/user-presets
FAQ

Frequently Asked Questions about Sparkle for Divi